ISC2 Certified Cloud Security Professional (CCSP) Practice Question
A project team is initiating development of a new cloud-hosted customer portal and is working through the business requirements stage of its secure SDLC. Which activity should be completed during this stage to make sure the security objectives of the portal are aligned with the company's regulatory and contractual obligations before any design work begins?
Install runtime application self-protection (RASP) agents in the container images.
Execute dynamic application security testing (DAST) against the staging environment.
Integrate security unit tests into the continuous integration pipeline.
Identify and classify the data the portal will handle to determine required protection levels.
The business requirements phase is when high-level needs are gathered and translated into measurable security requirements. Classifying the data that the portal will store or process establishes its confidentiality, integrity, and availability ratings and highlights relevant regulations (for example, PCI DSS for cardholder information). Those ratings become a baseline for later design, coding, and testing decisions. Activities such as integrating security unit tests, deploying runtime self-protection, or running dynamic scans occur in later SDLC phases once code and infrastructure exist.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What does 'classifying data' mean and why is it important during the business requirements phase?
Open an interactive chat with Bash
What is PCI DSS, and how does it relate to cloud-hosted applications?
Open an interactive chat with Bash
What is the secure software development lifecycle (SDLC), and how do security activities vary across its phases?
Open an interactive chat with Bash
ISC2 Certified Cloud Security Professional (CCSP)
Cloud Application Security
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .